Breach Intelligence

6,875

Total breached databases

In December 2024, data associated with the Federation Francaise de Tennis (fft.fr), the governing body of tennis in France that organises the Roland-Garros / French Open, was allegedly obtained from an internal tournament-management API and later published on a hacking forum. Reports suggest the exposed data covered approximately 1,500 professional tennis players and included names, genders and nationalities alongside extensive non-personal tournament information such as match results, schedules and referees. The data did not include passwords.
  • Date: Dec 17, 2024
  • Domain: fft.fr
  • Threat Actor: sieb3l
  • Country: France
  • Category: Sports
  • Data: Names Genders Nationalities Sport Information
  • Records: 1,558
  • Lines: 31,033
  • Size: 626.84 KB
  • Passwords: No
In March 2025, data associated with Mon Compte Formation (moncompteformation.gouv.fr), the official French government platform for managing personal training accounts (CPF) and funding certified courses, was allegedly published on a hacking forum. Reports suggest the database contained approximately 597,000 individuals, with the records appearing to originate from a training-provider CRM handling CPF enrolments. The exposed data reportedly included full names, email addresses, and phone numbers. No passwords were included in the leak.
  • Data: Email Addresses Names Phone Numbers Geographic Locations Site Activity
  • Records: 646,866
  • Lines: 646,866
  • Size: 401.76 MB
  • Passwords: No
In 2025, Smallable (smallable.com), a French online concept store for children's and family fashion and design, allegedly suffered a data breach. Reports suggest a database was published on a hacking forum containing records relating to approximately 742,000 children. The exposed data reportedly included first names, genders, and dates of birth. No email addresses or passwords were included in the leak.
  • Date: 2025
  • Domain: smallable.com
  • Country: France
  • Category: E-commerce & Retail
  • Data: Names Genders Birthdates
  • Records: 742,548
  • Lines: 742,547
  • Size: 57.66 MB
  • Passwords: No
In 2023, Clyo Systems (clyosystems.com) allegedly suffered a data breach. Clyo Systems is a French point-of-sale and restaurant-management software provider. Reports suggest a customer database of approximately 147,820 users was exposed, including full names, email addresses, phone numbers, dates of birth, and plaintext passwords. Passwords were stored in plaintext.
  • Date: Jan 2023
  • Domain: clyosystems.com
  • Threat Actor: slvsh3r
  • Country: France
  • Category: Technology
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Site Activity Birthdates
  • Records: 147,820
  • Lines: 147,820
  • Size: 23.41 MB
  • Passwords: Plaintext
Sometime before 2020, Cartouches Certifiées (cartouchescertifiees.com), a French online retailer of printer cartridges and printing supplies, allegedly had its WordPress database leaked. Reports suggest the incident exposed roughly 4,800 records, consisting mostly of email addresses left by blog commenters, along with a small number of WordPress user accounts whose passwords were stored as WordPress (phpass) hashes.
  • Data: Email Addresses Passwords Names Usernames Site Activity Messages
  • Records: 4,745
  • Lines: 1,802,722
  • Size: 530.43 MB
  • Passwords: PHPass
  • Cracked: 0%
In November 2025, Allegro Musique (allegromusique.fr) allegedly suffered a data breach following unauthorized back-office access. Allegro Musique is a French platform for at-home music lessons. Reports suggest a database of roughly 161,000 records covering both customers and music teachers was exposed, including full names, titles, dates of birth, email addresses, landline and mobile phone numbers, postal addresses, account status and lifecycle dates. Teacher records additionally included French Social Security numbers, professional/employment details, and free-text commercial notes. No passwords were included in the exposed data.
  • Date: Nov 2025
  • Domain: allegromusique.fr
  • Threat Actor: czx
  • Country: France
  • Category: Education
  • Data: Email Addresses Names Phone Numbers Physical Locations Geographic Locations Usernames Government IDs Social Security Numbers Genders Site Activity Job Information Birthdates Date of Death
  • Records: 161,412
  • Lines: 161,412
  • Size: 190.68 MB
  • Passwords: No
In 2025, e-campus.interieur.gouv.fr allegedly suffered a data breach. E-Campus Intérieur is an online professional-training platform run by the French Ministry of the Interior for civil servants, police officers, and administrative staff. Reports suggest the data of approximately 176,000 government agents was exposed, including full names, email addresses, cities, time zones, and detailed records of the training courses and badges each individual completed. No passwords were included in the exposed data.
  • Data: Email Addresses Names Physical Locations Geographic Locations Usernames Site Activity Company Information Education Time Zones
  • Records: 176,317
  • Lines: 176,317
  • Size: 180.65 MB
  • Passwords: No

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.